Cybersecurity

April 1, 2020
By Mark A. Spangler
Navigating today’s cyber battlespace without a robust understanding of organizational risk, mission essential functions and critical cyber terrain can cause even the most seasoned manager to feel digitally adrift. Credit: Original image is a composite of at least nine images and graphics that TriSept’s, Axel Edling, created.

Managing an enterprise cybersecurity and information assurance program in any company today is a complex balancing act. It resembles an unending three-dimensional chess match entwining business risk, profit and loss, pitting a company’s very survival against myriad global threat actors. An organization’s cybersecurity stance also involves a combination of technology and solid decision making at an organization’s highest levels.

April 1, 2020
By Sarbari Gupta, Ph.D.
Overspending on cyber tools and appliances placed in the wrong location or configured poorly can be equally bad if not worse than under-resourcing. 2,500 years before the advent of digital networking, military strategist Sun Tzu’s advice is still applicable: You must know your enemy and know yourself to be victorious. Credit: Pexels/meo

Security is among the single greatest concern government agencies have about moving their systems to the cloud. Although it offers significant benefits, cloud computing continues to raise questions about data and system protection. Regardless, the Office of Management and Budget via its Cloud Smart Strategy and the previous Cloud First policy mandates government agencies move to the cloud.

April 1, 2020
By Jennifer Miller

The Secure 5G and Beyond Act, the Promoting United States Wireless Leadership Act and the Prague Proposals have topped the headlines in recent months. All three are focused on security.

March 11, 2020
By George I. Seffers
The bipartisan Cyberspace Solarium Commission has released a report warning of cyberspace insecurity in the United States and offering more than 75 recommendations. Credit: Inna Bigun/Shutterstock

The bipartisan Cyberspace Solarium Commission today issued a call to action on cybersecurity. The commission issued a report sounding the alarm on the nation’s lack of security in cyberspace.

“The reality is that we are dangerously insecure in cyber. Your entire life—your paycheck, your health care, your electricity—increasingly relies on networks of digital devices that store, process and analyze data. These networks are vulnerable, if not already compromised,” Sen. Angus King (I-Maine) and Rep. Mike Gallagher (R-Wisconsin), co-chairs of the commission, write in a letter introducing the report.

March 1, 2020
By Shaun Waterman
Hardware for 5G networks largely comes from non-U.S. firms. Samsung technology provides the foundation for Sprint Mobile’s 5G network in Chicago. Credit: Samsung

The much-hyped 5G has begun to arrive, but in the United States, the truly transformative elements of these next-generation cellular networks are probably still four or five years off. Although improvements such as 100-times-faster speeds will enable more life-and-death type services, including remote surgery or self-driving cars, they also employ a more compromised hardware supply chain and offer a larger attack surface than current networks, federal officials warn.

“The anxiety from governments and regulators about the security issues [arising from 5G] and possible nation-state interference is at a fever pitch right now,” Robert Mayer, senior vice president for cybersecurity, USTelecom, says.

February 21, 2020
By Robert K. Ackerman
Adm. James Stavridis, USN (Ret.), is an operating executive for The Carlyle Group and former supreme allied commander of NATO.

The United States is woefully underprepared to protect cyberspace against the worst-case scenarios threatening the country, says the former supreme allied commander of NATO. Adm. James Stavridis, USN (Ret.), operating executive for the Carlyle Group, warns that long-term solutions must be paired with near-term actions to prevent a host of cyber threats from crippling the United States militarily and economically.

January 29, 2020
 

Technica Corp. of Sterling, Virginia, has been awarded a $13,591,345 cost-plus-fixed-fee modification to exercise the first option period, February 15, 2020, through February 14, 2021. The contract provides weapon system engineering and maintenance services to include incremental software version development and installation, security patch installations, preventative maintenance, trouble shooting and responsive Tier 1, 2 and 3 support for the Cyberspace Vulnerability Assessment/Hunter (CVA/H) weapon system. Work will be performed in Sterling, Virginia, and is expected to be complete by August 14, 2025. The award is the result of a competitive acquisition.

January 14, 2020
By Robert K. Ackerman
Credit Shutterstock/sdecoret

Applying artificial intelligence/machine learning (AI/ML) cybersecurity is a “hard problem,” but one with significant and promising progress, according to intelligence experts. Achieving this will require a combination of top-down and bottom-up efforts that leverage both government and industry cooperation, as each can benefit from unique capabilities and contributions of the other.

November 19, 2019
By Robert K. Ackerman
Robert Bauman of Trusted Systems warns of a physical security gap that empowers the insider threat.

Greater concentration on separate physical security and cybersecurity has led to a major loophole characterized by the insider threat. Combining the two disciplines holds the key to protecting against devastating data breaches.

October 25, 2019
 

FreeAlliance.com LLC,* McLean, Virginia, is awarded a $15,299,578 cost-plus-fixed-fee contract for advanced cyber support services in support of the Marine Corps Cyberspace Operations Group.  Work will be performed in Quantico, Virginia.  This one-year contract includes four one-year option periods which, if exercised, would bring the cumulative value of this contract to an estimated $79,599,761. The period of performance of the base period is November 1, 2019, through October 31, 2020.  If all options are exercised, the period of performance would extend through October 31, 2024.  Fiscal year 2020 operations and maintenance (Marine Corps) funds in the amount of $1 million will be obligated at time of award. Fiscal 2020 operations and ma

October 2, 2019
Posted by George I. Seffers
The NSA's new Cybersecurity Directorate will initially focus on securing weapon systems and the defense industrial base. Credit: Shutterstock/honglouwawa

The National Security Agency (NSA) has created a new Cybersecurity Directorate as a recognition that “the best defense against devastating cyber attacks is to unify as a nation against our threats,” the agency has announced.

August 27, 2019
Posted by Kimberly Underwood
The one-year old Cybersecurity and Infrastructure Security Agency at the Department of Homeland Security is coordinating the protection of the nation’s critical infrastructure. Credit: Shutterstock/Imfoto

The Department of Homeland Security’s new Cybersecurity and Infrastructure Security Agency, known as CISA, is charged with coordinating the protection of America’s critical infrastructure from cyber as well as physical attacks. Director Christopher Krebs recently released the agency’s top operational priorities. CISA, which was created in November 2018, will initially tackle supply chain risks, election security and industrial control system security, among other measures, according to the document, Cybersecurity and Infrastructure Security Agency: Strategic Intent.

August 19, 2019
By Robert K. Ackerman
Sailors stand watch in the Fleet Operations Center at the headquarters of U.S. Fleet Cyber Command/U.S. 10th Fleet. The Navy has created a new special assistant position to coordinate service cyber efforts ranging from strategy to security. (Photo Credit: U.S. Navy Photo)

The U.S. Navy is creating a new position emphasizing a cultural and operational change in cybersecurity to deal with increasing online threats that have already plagued the service and its contractors. The new position, special assistant to the secretary of the Navy for information management, will be established and filled in the next couple of weeks with a cyber expert from private industry, says Undersecretary of the Navy Thomas Modly.

August 8, 2019
 

RTL Networks Inc.,* Denver, Colorado, is awarded a $14,399,532 cost-plus-fixed-fee, indefinite-delivery/indefinite-quantity contract to provide services in the areas of cooperative cyber risk assessments and cyber table tops of fighter/attack (fixed and rotary wing) and surveillance aircraft or similarly complex aircraft, tactical unmanned aerial vehicles, GPS guided weapons or similarly complex weapons, training simulators, Portable Electronic Maintenance Aids equipment, software and development environments, and associated communications and networks. Work will be performed in China Lake, California (50%); Placentia, California (48%); and Denver (2%), and is expected to be completed in August 2024. No funds will be obligated at the tim

June 20, 2019
 

Data Intelligence LLC,* Marlton, New Jersey, is awarded a $12,584,840 indefinite-delivery/indefinite-quantity, cost-plus-fixed-fee contract to provide cybersecurity and security engineering-related services to the Department of Defense, National Guard Bureau and Department of Homeland Security. This two-year contract includes one, three-year option period which, if exercised, would bring the potential value of this contract to an estimated $31,832,280. Work will be performed in Marlton, New Jersey (25%) and in Philadelphia, Pennsylvania (75%), and work is expected to be completed June 18, 2021. If the option is exercised, work will continue through June 18, 2024. No funds will be obligated at the time of award.

May 31, 2109
By Maryann Lawlor
Artificial intelligence and machine learning are still technically in their infancy. Both show promise in the military and government arenas, but experts still have many questions.

Artificial intelligence and machine learning techniques could help information and network defenders recognize patterns of potential attackers so their next moves can be proactively blocked. In addition, cyber tools enhanced with these capabilities could provide a much more detailed picture of the cyber battlefield and increase the potential of success in a cyber campaign. This knowledge would complement the kinetic battlefield and could permit war planners to choose the appropriate mix of cyber and kinetic operations.

May 23, 2019
 

Sentar Inc.,* Huntsville, Alabama, was awarded a $10,426,896 hybrid (cost-no-fee and firm-fixed-price) contract for cyber security and information management support services. Twenty five bids were solicited with six bids received. Work will be performed in Huntsville, Alabama, with an estimated completion date of November 30, 2024. Fiscal year 2019 operations and maintenance, Army and Army working capital funds in the amount of $1,683,982 were obligated at the time of the award. U.S. Army Contracting Command, Redstone Arsenal, Alabama, is the contracting activity (W31P4Q-19-F-0323). *Small Business

May 22, 2019
By Julianne Simpson
David Sanger, national security correspondent for The New York Times, discusses cyber at the AFCEA-GMU C4I and Cyber Center Symposium.

Cyber is fundamentally changing the national security landscape. David Sanger, national security correspondent for The New York Times and author of The Perfect Weapon, used his keynote address on day two of the AFCEA-GMU C4I and Cyber Center Symposium not to explain what is happening, but why this is happening.

To illustrate the new age of weaponizing information, Sanger described the differences between Watergate and the hack of the DNC in December 2016. The Russians didn’t have to do anything the Watergate hackers did.

May 14, 2019
Kimberly Underwood
Lawmakers have created a new organization, the Cyberspace Solarium Commission, to tackle a national cybersecurity policy.

Legislators on Capitol Hill have formed the Cyberspace Solarium Commission, known as the CSC, which will put together a comprehensive U.S. cyber policy. Sen. Angus King (I-Maine), who is co-chairing the new organization with Rep. Michael Gallagher (R-Wisc.), announced the formation of the Geneva Convention-type commission in a call with reporters on May 13. The establishment of the commission was outlined in last year’s National Defense Authorization Act (NDAA), Sen. King said.

May 1, 2019
By Julianne Simpson
Mr.B-king/Shutterstock

The cybersecurity workforce gap is real, and it’s growing. Based on a state-by-state analysis on CompTIA’s cyberstates.org, there are currently 320,000 open cyber jobs in the United States. By 2022, the projected shortage of cybersecurity professionals worldwide will reach 1.8 million, according to the Center for Cyber Safety and Education.

Pages